Dodanki za Firefox Browser
  • Rozšyrjenja
  • Drastwy
    • za Firefox
    • Słowniki a rěcne pakśiki
    • Druge sedła wobglědowaka
    • Dodanki za Android
Pśizjawiś
Pśeglěd za Secret Scanner – Exposed Secrets

Secret Scanner – Exposed Secrets wót pp4mnk

Scans webpages for potentially exposed API keys, tokens, and secrets using local heuristics.

0 (pógódnośenja: 0)0 (pógódnośenja: 0)
Žedne wužywarjeŽedne wužywarje
Firefox ześěgnuś a rozšyrjenje wobstaraś
Dataju ześěgnuś

Metadaty rozšyrjenja

Wó toś tom rozšyrjenju
Secret Scanner – Exposed Secrets Detector

Secret Scanner is a lightweight security tool that helps identify potentially exposed API keys, tokens, and credentials directly within publicly delivered web pages.

It scans the HTML content and inline JavaScript of the currently open webpage to detect patterns commonly associated with hardcoded secrets, a frequent security mistake in web development.

🔍 What Secret Scanner detects (heuristic)

🚨 API keys and service tokens, including patterns related to:

AWS access keys

Google API keys

Stripe secret keys

🔑 JWT tokens and Bearer tokens

🔐 Hardcoded credentials such as apiKey, secret, token, or password assignments

🧩 Suspicious high-entropy strings that may indicate exposed secrets

🧠 How it works

Secret Scanner analyzes only publicly available page content:

The rendered HTML

Inline JavaScript embedded in the page

It does not fetch external scripts, execute code, validate credentials, or attempt to use detected values in any way.
All findings are heuristic indicators, not proof of a real or exploitable secret.

🛡️ Privacy & safety

✅ All analysis runs locally in the browser

✅ No data collection

✅ No tracking

✅ No external APIs or servers

✅ No detected values are stored or transmitted

Only aggregated results (type and count) are shown to the user to avoid exposing sensitive values.

🎓 Intended use

Secret Scanner is designed for educational, development, and auditing purposes.
It is useful for:

Developers reviewing their own projects

Learning about common security misconfigurations

Demonstrating secure coding practices

Quick, non-intrusive checks during development or testing

Results should always be manually reviewed and interpreted in context.

Secret Scanner helps promote better security practices by making hidden risks visible—without collecting data or compromising privacy.
Z 0 wót 0 pógódnośujucych pógódnośony
Pśizjawśo se, aby toś to rozšyrjenje pógódnośił
Hyšći pógódnośenja njejsu

Gwězdowe pógódnośenje jo se składło

5
0
4
0
3
0
2
0
1
0
Hyšći žedne pógódnośenja
Pšawa a daty

Trjebne pšawa:

  • Pśistup k wašym datam za wšykne websedła měś

Gromaźenje datow:

  • Wuwijaŕ groni, až toś to rozšyrjenje gromaźenje datow njetrjeba.
Dalšne informacije
Dalšne informacije
Dodankowe wótzkaze
  • Sedło pomocy
  • E-mailowa adresa pomocy
Wersija
0.1.0
Wjelikosć
10,71 KB
Slědny raz zaktualizěrowany
לפני חודש (5 פבר׳ 2026)
Pśiswójźbne kategorije
  • Priwatnosć a wěstota
Licenca
Licenca Apache 2.0
Wersijowa historija
  • Wšykne wersije pokazaś
Zběrce pśidaś
Toś ten dodank k wěsći daś
K startowemu bokoju Mozilla

Dodanki

  • Wó nas
  • Blog dodankow Firefox
  • Źěłowa kupka rozšyrjenjow
  • Wuwijaŕski rožk
  • Wuwijaŕske pšawidła
  • Blog zgromaźeństwa
  • Forum
  • Programowu zmólku k wěsći daś
  • Směrnica za pógódnośenja

Wobglědowaki

  • Desktop
  • Mobile
  • Enterprise

Produkty

  • Browsers
  • VPN
  • Relay
  • Monitor
  • Pocket
  • Bluesky (@firefox.com)
  • Instagram (Firefox)
  • YouTube (firefoxchannel)
  • Priwatnosć
  • Cookieje
  • Pšawniske

Jolic nic hynac zapisane, se wopśimjeśe na toś tom sedle pód Creative Commons Attribution Share-Alike License v3.0 abo póznjejšeju wersiju licencěrujo.